Vulnerability Description
A stored cross-site scripting vulnerability exists in the web management interface of the R.V.R. Elettronica TLK302T telemetry controller (firmware 1.5.1799).
CVSS Score
LOW
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Rvr | Tlk302T Firmware | 1.5.1799 |
| Rvr | Tlk302T | - |
Related Weaknesses (CWE)
References
- https://github.com/iyadalkhatib98/My_CVES/tree/main/CVE-2025-65228ExploitThird Party Advisory
- https://www.rvr.it/en/products/components/telemetry-units-system/tlk300-series/tProduct
FAQ
What is CVE-2025-65228?
CVE-2025-65228 is a vulnerability with a CVSS score of 3.5 (LOW). A stored cross-site scripting vulnerability exists in the web management interface of the R.V.R. Elettronica TLK302T telemetry controller (firmware 1.5.1799).
How severe is CVE-2025-65228?
CVE-2025-65228 has been rated LOW with a CVSS base score of 3.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-65228?
Check the references section above for vendor advisories and patch information. Affected products include: Rvr Tlk302T Firmware, Rvr Tlk302T.